Saturday 20 April 2013

Website Scanning

| |
Website Scanning is complete Malfunctioning of a website.In which we do foot printing, fingerprinting, vulnerability scanning etc.....



                                   Footprinting
Footprinting is first and most convenient step used by hackers to gather information,about computer and websites.
Footprinting is a first step that a penetration tester used to evaluate the security of any IT infrastructure, Footprinting means to gather the maximum information about the computer system or a network and about the devices that are attached to this network. 

Footprinting is a first and the important step because after this a penetration tester know how the hacker sees this network.

To measure the security of a computer system, it is good to know more and more as you can because after this you will able to determine the path that a hacker will use to exploit this network. 
Steps in Footprinting:-1. Information gathering
2. Determining the network range
3. Identifying active machines
4. Finding open ports and access points
5. OS fingerprinting
6. Fingerprinting services
7. Mapping the network
                                                          Fingerprinting
 Fingerprinting is done to determine remote OS.For example, attempting Windows-specific hacks against a UNIX system is pointless. Fingerprinting is possible because the TCP/IP specifications do not fully define the behavior of a protocol stack. Therefore, by sending unusual (undefined) network traffic at a system, the hacker will receive responses unique to that system.
There are two types of fingerprinting:-
1. Active Stack fingerprinting :-
 Allows attacker to leave smaller footprint and have greater chance to succeed.
Based on the fact that various OS vendors implement the TCP stack differently.
2. Passive fingerprinting :-
Instead of relying on scanning the target host,it captures packets from the target host and study it for tell tale signs that can reveal the OS.
It is less accurate than active fingerprinting.
 
                                   SCAN YOUR WEBSITE HERE.......
1. http://sitecheck.sucuri.net/scanner/
It is free website malware scanner.
2.https://www.virustotal.com/en/ 
VirusTotal is a free virus, malware and URL online scanning service. File checking is done with more than 40 antivirus solutions.
3.http://siteinspector.comodo.com/ 
This free service will scan only a single page at a time.
4.http://onlinelinkscan.com/
Onlinelinkscan is a fast, free antivirus tool that scans any suspicious websites for adware, trojans, viruses and malware. 
5.http://www.urlvoid.com/
 Scan websites with multiple website reputation engines and domain blacklists to check if the website is safe and legit. 


                 WEBSITE SCANNING WITH TOOLS........ 
1.Acunetix web vulnerability scanner
2.Netsparker community Edition (Windows)
3.Websecurify (Windows,Linux,Mac OS X)
4.Wapiti (Windows,Linux,Mac OS X)
5.N-stalker (Windows) 
6.Skipfish
7.Exploit-me (Windows,Linux,Mac OS X)
8.SQLmap
9.Grendel-scan
10.Appscan


 
 

 

0 comments:

Post a Comment